Exploitation Summary
EIP tracks 1 public exploit for CVE-2004-2303. PoCs published by Sebastian Krahmer.
AI-analyzed exploit summary This exploit leverages a privilege escalation vulnerability in mformat (CVE-2004-2303) by manipulating the .mtoolsrc file to overwrite /etc/ld.so.preload, then loading a malicious shared library to escalate privileges to root.
Description
MTools Mformat before 3.9.9, when installed setuid root, creates files with world-readable and world-writable permissions, which allows local users to read and overwrite files.
Exploits (1)
This exploit leverages a privilege escalation vulnerability in mformat (CVE-2004-2303) by manipulating the .mtoolsrc file to overwrite /etc/ld.so.preload, then loading a malicious shared library to escalate privileges to root.